iBanFirst
About iBanFirst
iBanFirst is a European-headquartered fintech that specializes in enabling medium sized businesses to undertake cross-border payments and transactions.
Learn more about iBanFirst by visiting www.ibanfirst.com.
“Airlock Digital builds stakeholder trust in our ability to mitigate threats such as ransomware and malware.”
Florent Gilain, Chief Information Security Officer, iBanFirst
Benefits to iBanFirst
With Airlock Digital application control and allowlisting, iBanFirst has:
The Customer
The Challenge
The Approach
Having implemented CrowdStrike to provide endpoint detection and response, Florent started looking at opportunities to augment the product’s functionality with a second line of defense. “We wanted a solution that would allow us to control what executed on our laptops in order to reduce our attack surface,” he explained. “For example, we needed to restrict users to Chrome or Edge, with no unauthorized browsers allowed to run. In addition, we wanted to control the execution of extensions and apply several CIS-benchmark hardening guides for systems, browsers and other elements of our architecture.
“We found only application control and allowlisting with Airlock Digital would allow us to do that.”
The simplicity of its allowlisting processes, the flexibility and budget-friendliness of running a cloud-based solution, and a logging feature that enables the security team to track what attempts to execute also contributed to Florent’s decision to implement Airlock Digital.
The Result
The project was so successful the iBanFirst cybersecurity team won silver and the special jury prize at a prestigious event, Cybernight, organized by Republik Cyber, for “delivering a transformative solution that significantly strengthens security.”
Securing buy-in across the organization for Airlock Digital as a critical security control was straightforward thanks to clear communication to users from the information security team, and the solution’s one-time password functionality. This enabled iBanFirst to provide time-limited exceptions for users who require time-limited access to non-allowlisted applications, minimizing disruption to productivity including when offline.
The combination of effectiveness, ease of use, and manageability offered by Airlock Digital is epitomized by the fact iBanFirst’s three-person security team spends just one to two hours per week working with the solution to review executions. Meanwhile, the organization relies on the solution to align with critical cybersecurity frameworks and regulations, such as the European Union’s Digital Operational Resilience Act (DORA), which aims to strengthen the security and resilience of financial institutions. “Airlock Digital’s application control and allowlisting solution helps limit the propagation or lateralization of a cyber-attack, which minimizes the risk of disruption to customer services and supports the objectives of DORA and other finance sector cybersecurity rules,” said Florent. “We expect the solution to play an important role in our program to become ISO27001-compliant in line with requests from our customers.
“Just as iBanFirst extends trust beyond borders with our payment solution, Airlock Digital builds stakeholder trust in our ability to mitigate threats such as ransomware and malware,” he concluded.